Cross-Site Scripting Vulnerability in Woostify Theme by Woostify
CVE-2025-60101
5.9MEDIUM
What is CVE-2025-60101?
The Woostify theme for WordPress contains a vulnerability that allows stored Cross-Site Scripting (XSS). This occurs due to improper neutralization of input during web page generation, which can be exploited by attackers to inject malicious scripts. Users of Woostify versions from n/a to 2.4.2 are advised to update their installations to mitigate this security risk.
Affected Version(s)
Woostify 0 <= 2.4.2